Latest CVE Feed
-
10.0
HIGHCVE-2018-12814
Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more
Affected Products : digital_editions- Published: Oct. 17, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2018-12815
Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have a Use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user... Read more
- Published: Jul. 20, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2018-12813
Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more
Affected Products : digital_editions- Published: Oct. 17, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2008-6820
The db2fmp process in IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP2 on Windows runs with "OS privilege," which has unknown impact and attack vectors, a different vulnerability than CVE-2008-3856.... Read more
- Published: Jun. 03, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-6767
wp-admin/upgrade.php in WordPress, probably 2.6.x, allows remote attackers to upgrade the application, and possibly cause a denial of service (application outage), via a direct request.... Read more
Affected Products : wordpress- Published: Apr. 28, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-6415
Buffer overflow in YoungZSoft CCProxy 6.5 might allow remote attackers to execute arbitrary code via a CONNECTION request with a long hostname.... Read more
Affected Products : ccproxy- Published: Mar. 06, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2018-12787
Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have an Out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the curren... Read more
- Published: Jul. 20, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2008-6071
Heap-based buffer overflow in the DecodeImage function in coders/pict.c in GraphicsMagick before 1.1.14, and 1.2.x before 1.2.3, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PICT image. NOT... Read more
Affected Products : graphicsmagick- Published: Feb. 10, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-5457
Unspecified vulnerability in the Oracle BEA WebLogic Server Plugins for Apache, Sun and IIS web servers component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, and 7.0 SP7 allows remote attackers to affect confidentiality, integrity, an... Read more
Affected Products : bea_product_suite- Published: Jan. 14, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-5415
The LDBserver service in the server in CA ARCserve Backup 11.1 through 12.0 on Windows allows remote attackers to execute arbitrary code via a handle_t argument to an RPC endpoint in which the argument refers to an incompatible procedure.... Read more
- Published: Dec. 11, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-5401
Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a long image filename, related to "AIM IMG Tag Parsing."... Read more
- Published: Dec. 10, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-5282
Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0.1 allow remote attackers to execute arbitrary code via (1) a link with a long HREF attribute, and (2) a DIV tag with a long id attribute.... Read more
Affected Products : amaya_web_browser- Published: Nov. 29, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-4692
The Native Managed Provider for .NET component in IBM DB2 8 before FP17, 9.1 before FP6, and 9.5 before FP2, when a definer cannot maintain objects, preserves views and triggers without marking them inoperative or dropping them, which has unknown impact a... Read more
Affected Products : db2- Published: Oct. 22, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2018-12758
Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have an Out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the curren... Read more
- Published: Jul. 20, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2008-4402
Multiple buffer overflows in CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow remote attackers to execute arbitrary code via unspecified vectors.... Read more
- Published: Oct. 03, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2002-1251
Buffer overflow in log2mail before 0.2.5.1 allows remote attackers to execute arbitrary code via a long log message.... Read more
Affected Products : log2mail- Published: Nov. 12, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2008-4008
Unspecified vulnerability in the WebLogic Server Plugins for Apache component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, 7.0 SP7, and 6.1 SP7 allows remote attackers to affect confidentiality, integrity, and availability via unknown ... Read more
Affected Products : bea_product_suite- Published: Oct. 14, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-3892
Buffer overflow in a certain ActiveX control in the COM API in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488... Read more
- Published: Sep. 03, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-3865
Multiple heap-based buffer overflows in the ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as used in Trend Micro OfficeScan 8.0 SP1 Patch 1 and Internet Security 2007 and 2008 17.0.1224... Read more
- Published: Jan. 21, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-3695
Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMw... Read more
- Published: Sep. 03, 2008
- Modified: Apr. 09, 2025